Category: Uncategorized
What can opsmgr do to mitigate against MS08-067 exploits?
October 26th, 2008I have prepared a Management Pack to be used with OpsMgr 2007. As this was done in a bit of a hurry it really does not comply with best practices.
Two (Local Application based) monitors to all servers
1. Is NETAPI32.DLL too old? i.e. not patched yet. We initially had problems with our distribution of the Update and this proved to be a good reality check. This has two states good and warning.
2. Is there a file %System%\Wbem\basesvc.dll on my servers (i.e. The server is exploited?. This also has two states Critical and good.
A Nice View
Of course a nice state view of all servers.
Details of a know exploit
Management Pack. Save as an XML file
SCOM OpsMgr System Center Operations Manager MS06-040 2007
MS08-067 and Heterogeneous Environments
October 26th, 2008We are currently in PANIC! mode with testing and deploying MS08-067.
After distributing it into out testnet the authentication for some of our non-windows services failed. It is important remember the experiences we had with MS06-040 as this Security Update has been superceeded by MS08-067.
Department of Homeland Security and MS08-067
Deployment Issues; MS08067 MS-08067 Deploy